Try our new research platform with insights from 80,000+ expert users

Cisco Identity Services Engine (ISE) vs macmon Network Access Control comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Identity Services Eng...
Ranking in Network Access Control (NAC)
1st
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
143
Ranking in other categories
Cisco Security Portfolio (1st)
macmon Network Access Control
Ranking in Network Access Control (NAC)
10th
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2025, in the Network Access Control (NAC) category, the mindshare of Cisco Identity Services Engine (ISE) is 24.9%, down from 30.3% compared to the previous year. The mindshare of macmon Network Access Control is 2.9%, up from 1.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC)
 

Featured Reviews

SunilkumarNaganuri - PeerSpot reviewer
Enhanced device administration hindered by complex deployment and security limitations
Cisco Identity Services Engine (ISE) needs to improve the profiling preauthentication. They are very poor in asset classification and should focus on improving the preauthentication profiling, especially for NAC use cases. This will give them a roadmap for software-defined access (SDA) use cases and network segmentation. Threat detection capabilities are very weak. Additionally, the product is vulnerable and has many bugs.
Yusuf Oezeren - PeerSpot reviewer
A robust solution that provides protection to effectively control the access to your network
The single sign-on process can be improved and the interface should be made more user-friendly. The interface is user-friendly but, for example, when we have new people starting to work, they never work with NetOne and it is a bit hard to expand in certain places. In addition, when I have to pull the last corrected MAC address, I need to put the space between it in order to find the address. If I don't put it in there, I don't get any resources. This needs improvement. They should maybe add integration with LanSuite. We can include it to see the direct information we get from our LAN Tree. If I click on the MAC address, I will then directly get the hostname, and that will open a tap-in line so I see what the last update was.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It has allowed us to pull in multiple authentication databases, then centralize them into a captive portal system."
"The policies allow us to enforce certain rules on the network to be able to screen our users more effectively."
"The solution offers automation and real-time visibility, which aids in monitoring and troubleshooting issues with endpoints."
"There are a lot of integrations available with multiple vendors. This has made the solution easier to work with."
"The core point is that Cisco ISE is the same globally compared to FortiAuthenticator. Whether I deploy in China, the US, South Africa, or wherever, I'm can get all the capabilities. It allows me to directly integrate with 365, and from a communications point of view, that is a good capability."
"The most valuable feature is the ASDM - the user interface makes it very easy to configure the firewall."
"The return on investment we have seen is related to time in terms of troubleshooting. The logs, such as the security logs, inform us of the issues that people have had. ISE has been very instrumental in helping isolate those issues. We've seen a lot of cost savings because we don't have to pay an IT person to waste time doing something that should be instantaneous."
"TACACS and .1X security are the most valuable features. TACACS acts for user control, so no one can authenticate to our network devices, and .1X is to validate that unauthorized devices are plugged into our network."
"The API is a great way to get information from other tools."
"We use it with our Cisco switches so we can see which switch it is actually connected to."
"The ease of connecting with the client is valuable for me."
 

Cons

"If Cisco could grant more control, the features could be more focused on network and security administration, reducing the need for integration with other components."
"The software is a little bit complicated to understand in the beginning, meaning the implementation. It needs proper documentation so that we can understand the options more easily."
"The support could be faster and the pricing could be reduced."
"This product doesn't work in isolation."
"The solution could be more secure."
"I'm working from China currently and the only real issue is that, within the country, there's some concern around Cisco and its ability to offer the solution for the long term. As the United States has banned the Huawei version in their country, we feel there may be retaliation in ours and Cisco will get banned as a countermeasure from the government. The future of Cisco in China is in question. Our local partners are worried about the situation."
"In an upcoming release, it would be nice to have NAC already standard in the solution."
"The pricing and licensing structure are not ideal for customers."
"The single sign-on process can be improved and the interface should be made more user-friendly."
"The service macmon offers is already great."
"The solution must allow users to filter files based on dates."
 

Pricing and Cost Advice

"It is fairly expensive and that's part of why we have implemented it in the type of 'hack' that we did, to service multiple clients."
"According to my sales and account team, the prices we're getting are pretty good."
"It is not that pricey."
"I believe I have paid around $1,000 in licensing fees. The license is annual."
"Cisco ISE is not inexpensive, but the solution is well-built and worth the expense."
"Being fully honest, the Cisco licensing model right now is really confusing. We don't know what licenses we have where. We have Smart licensing, but the different levels are way confusing."
"The pricing is complicated."
"I have complaints. I don't enjoy the licensing model. Once we moved from 2.7 to 3.1, switching from Base, Plus, and Apex to Essential and Advantage in Premier, we went from a perpetual, with our base licenses, to now a subscription-base. So, we will have to renew those licenses every year, and I'm not a fan of that for our base licenses. Apex/Premier, we already expected, which is fine, but for basic connectivity, I am not a fan of that."
"The solution is not expensive."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
865,295 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
10%
Government
9%
Manufacturing Company
9%
Computer Software Company
15%
Manufacturing Company
13%
Comms Service Provider
8%
Educational Organization
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Which is better - Aruba Clearpass or Cisco ISE?
Aruba ClearPass is a Network Access Control tool that gives secure network access to multiple device types. You can adapt the policies to VPN access, wired, or wireless access. You can securely ...
What are the main differences between Cisco ISE and Forescout Platform?
OK, so Cisco ISE uses 802.1X to secure switchports against unauthorized access. The drawback of this is that ISE cannot secure the port if a device does not support 802.1x. Cameras, badge readers, ...
How does Cisco ISE compare with Fortinet FortiNAC?
Cisco ISE uses AI endpoint analytics to identify new devices based on their behavior. It will also notify you if someone plugs in with a device that is not allowed and will block it. The user exper...
What do you like most about macmon Network Access Control?
The ease of connecting with the client is valuable for me.
What needs improvement with macmon Network Access Control?
There is no information on the protocol where the clients stop to authenticate. There are some policies, but I don't know whether the device stopped on the authentication or authorization levels. I...
 

Also Known As

Cisco ISE
macmon NAC
 

Overview

 

Sample Customers

Aegean Motorway, BC Hydro, Beachbody, Bucks County Intermediate Unit , Cisco IT, Derby City Council, Global Banking Customer, Gobierno de Castilla-La Mancha, Houston Methodist, Linz AG, London Hydro, Ministry of Foreign Affairs, Molina Healthcare, MST Systems, New South Wales Rural Fire Service, Reykjavik University, Wildau University
More than 1,500 installations in all over Europe in all industries: Stepchange, Volkswagen, Vivantes Healthcare, MBDA Weapons, APS engineering, Alfred Ritter GmbH (Ritter Sport), Haßberg-Kliniken, 1. FSV Mainz 05 eV., Siempelkamp, AEB etc.
Find out what your peers are saying about Cisco Identity Services Engine (ISE) vs. macmon Network Access Control and other solutions. Updated: July 2025.
865,295 professionals have used our research since 2012.